Operation Manual

IP Services Commands
IP Services Commands
8 – 127
Defaults
No SNMPv3 users are configured by default. When you configure an SNMPv3 user, the
default access is read-only, and the default authentication and encryption types are both none.
Access
Enabled.
History
Introduced in MSS Version 4.0.
Examples
The following command creates USM user snmpmgr1, associated with the local SNMP
engine ID. This user can send traps to notification receivers.
MX# set snmp usm snmpmgr1 snmp-engine-id local
success: change accepted.
The following command creates USM user securesnmpmgr1, which uses SHA authentication and
3DES encryption with passphrases. This user can send informs to the notification receiver that has
engine ID 192.168.40.2.
MX# set snmp usm securesnmpmgr1 snmp-engine-id ip 192.168.40.2 auth-type sha auth-pass-phrase
myauthpword encrypt-type 3des encrypt-pass-phrase mycryptpword
success: change accepted.
See Also
clear snmp usm on page 8-98
set ip snmp server on page 8-111
set snmp community on page 8-116
set snmp group on page 8-117
set snmp notify target on page 8-121
set snmp notify profile on page 8-118
set snmp protocol on page 8-124
show snmp usm on page 8-143
auth-type {none | md5 | sha}
{auth-pass-phrase string | auth-key
hex-string}
Specifies the authentication type used to authenticate
communications with the remote SNMP engine. You can
specify one of the following:
none—No authentication is used.
md5—Message-digest algorithm 5 is used.
sha—Secure Hashing Algorithm (SHA) is used.
If the authentication type is md5 or sha, you can specify a
passphrase or a hexadecimal key.
To specify a passphrase, use the auth-pass-phrase string
option. The string can be from 8 to 32 alphanumeric
characters long, with no spaces.
To specify a key, use the auth-key hex-string option.
encrypt-type {none | des | 3des | aes}
{encrypt-pass-phrase string |
encrypt-key hex-string}
Specifies the encryption type used for SNMP traffic. You can
specify one of the following:
none—No encryption is used. This is the default.
des—Data Encryption Standard (DES) encryption is used.
3des—Triple DES encryption is used.
aes—Advanced Encryption Standard (AES) encryption is
used.
If the encryption type is des, 3des, or aes, you can specify a
passphrase or a hexadecimal key.
To specify a passphrase, use the encrypt-pass-phrase
string option. The string can be from 8 to 32 alphanumeric
characters long, with no spaces.
To specify a key, use the encrypt-key hex-string option.